Quote
Checking Domain Name
Domain Name: [phishing]
Top Level Domain: VN (Viet Nam)
DNS Lookup
IP Address: 125.253.112.146
Geolocation: VN (Viet Nam), 67, Tra Vinh, N/A N/A - Google Maps
Reverse DNS: mail112.e146.evlms.net
Also, this IP address is linked to this guy :
(original WHOIS query :
https://www.whois.com/whois/125.253.112.146)
Quote
% [whois.apnic.net]
% Whois data copyright terms
http://www.apnic.net/db/dbcopyright.html% Information related to '125.253.112.0 - 125.253.127.255'
% Abuse contact for '125.253.112.0 - 125.253.127.255' is '
[email protected]'
inetnum: 125.253.112.0 - 125.253.127.255
netname: ODS-VNNIC-VN
descr: Online data services JSC
descr: 123 Truong Dinh, dist 3, HCMC
country: VN
admin-c: HTV3-AP
tech-c: HNT6-AP
status: ALLOCATED PORTABLE
remarks: send spam and abuse report to
[email protected]mnt-by: MAINT-VN-VNNIC
mnt-lower: MAINT-VN-VNNIC
mnt-irt: IRT-VNNIC-AP
last-modified: 2010-12-29T01:48:01Z
source: APNIC
irt: IRT-VNNIC-AP
address: Ha Noi, VietNam
phone: +84-24-35564944
fax-no: +84-24-37821462
e-mail:
[email protected]abuse-mailbox:
[email protected]admin-c: NTTT1-AP
tech-c: NTTT1-AP
auth: # Filtered
mnt-by: MAINT-VN-VNNIC
last-modified: 2017-11-08T09:40:06Z
source: APNIC
person: Hoang Ngoc Tuyen
nic-hdl: HNT6-AP
e-mail:
[email protected]address: ODS-VN
phone: +84-28-62888999
fax-no: +84-28-39320299
country: VN
mnt-by: MAINT-VN-VNNIC
last-modified: 2018-01-04T08:44:16Z
source: APNIC
person: Huynh Trong Van
nic-hdl: HTV3-AP
e-mail:
[email protected]address: ODS-VN
phone: +84-28-62888999
fax-no: +84-28-39320299
country: VN
mnt-by: MAINT-VN-VNNIC
last-modified: 2018-01-04T08:43:53Z
source: APNIC
% This query was served by the APNIC Whois Service version 1.88.15-46 (WHOIS-US4)
Even though that web hosting company is vietnamese (
https://www.ods.vn/default.aspx) , I guess you should be able to contact them, since you would be engaging a law action against the scammer, and should be able to retrieve informations about the guy who bought that domain.
Even then, if this isn't the right person, and that website has actually been compromised by another person, as some persons might have stated it above, then ods.vn will be able to confirm that theory because of suspicious logs on their backend (because obviously they will have suspicious logs that aren't the ones of the owner)